PT-2023-3206 · Ibm · Ibm Txseries For Multiplatforms+2
Published
2023-06-06
·
Updated
2023-06-15
·
CVE-2023-33848
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM TXSeries for Multiplatforms versions 8.1 through 9.1
CICS TX Standard versions 10.1 through 11.1
CICS TX Advanced versions 10.1 through 11.1
Description
The issue is related to the application's excessive data output, which could allow a remote attacker to gain unauthorized access to confidential information. A privileged user could obtain highly sensitive information by enabling debug mode.
Recommendations
For IBM TXSeries for Multiplatforms versions 8.1 through 9.1, consider disabling debug mode to prevent sensitive information disclosure.
For CICS TX Standard versions 10.1 through 11.1, restrict access to sensitive information and avoid enabling debug mode.
For CICS TX Advanced versions 10.1 through 11.1, limit the output of sensitive data to prevent unauthorized access.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cics Tx Advanced
Cics Tx Standard
Ibm Txseries For Multiplatforms